ID

VAR-202102-1594


TITLE

OpenWrt has a denial of service vulnerability

Trust: 0.6

sources: CNVD: CNVD-2021-03508

DESCRIPTION

OpenWRT is a highly modular, highly automated embedded Linux system with powerful network components and scalability, and is often used in industrial control equipment, telephones, small robots, smart homes, routers, and VOIP devices. OpenWrt has a denial of service vulnerability that an attacker can exploit to cause a denial of service.

Trust: 0.6

sources: CNVD: CNVD-2021-03508

IOT TAXONOMY

category:['ICS', 'Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2021-03508

AFFECTED PRODUCTS

vendor:openwrtmodel:openwrtscope:eqversion:19.07.5

Trust: 0.6

sources: CNVD: CNVD-2021-03508

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2021-03508
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2021-03508
severity: MEDIUM
baseScore: 6.1
vectorString: AV:A/AC:L/AU:N/C:N/I:N/A:C
accessVector: ADJACENT_NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 6.5
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2021-03508

EXTERNAL IDS

db:CNVDid:CNVD-2021-03508

Trust: 0.6

sources: CNVD: CNVD-2021-03508

SOURCES

db:CNVDid:CNVD-2021-03508

LAST UPDATE DATE

2022-05-04T09:42:07.886000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2021-03508date:2022-01-05T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2021-03508date:2021-02-19T00:00:00